ACADEMY MORTGAGE CORPORATION
ent_019e595ac9ebc6c3407cd6c5fc4b3398
Disclosures
14
State AG · Leak Site · 10 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
284,443
nationwide · State AG ME
Leak-site claims
1
unverified actor claims
Identity resolution
- Canonical name
- ACADEMY MORTGAGE CORPORATION
- Normalized
- academy mortgage— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300WTZMQSET2VY242
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (14)newest first
- Massachusetts State AGas victim2024-01-15
Academy Mortgage Corporation reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-01-15. 5,354 Massachusetts residents were affected.
- California State AGas victim2024-01-15
Academy Mortgage Corporation detected a network security incident on March 21, 2023, where an unauthorized third party accessed and disabled systems. The investigation concluded in November 2023, determining that personal information (names, SSNs, dates of birth) of employees and mortgage applicants may have been accessed. No evidence of misuse was found. The company engaged forensic specialists, notified law enforcement, rebuilt systems, and offered credit monitoring.
- Maine State AGas victim2024-01-15
Academy Mortgage Corporation reported an external system breach (hacking) on March 21, 2023, affecting 284,443 individuals, including 618 in Maine. The breach compromised names and Social Security Numbers. The company notified consumers in writing on December 20, 2023, and offered 12 months of TransUnion credit monitoring and identity theft recovery services.
- South Carolina State AGas victim2024-01-08
Academy Mortgage Corporation notified employees of a network security incident detected on March 21, 2023. An unauthorized third party accessed and disabled systems, potentially exposing names, dates of birth, and Social Security numbers. The company engaged forensic specialists, notified law enforcement, rebuilt systems, and offered credit monitoring services.
- Oregon State AGas victim2024-01-05
Academy Mortgage Corporation reported a data breach to the Oregon Attorney General. The breach was reported on 2024-01-05. The breach occurred during 3/21/2023 - 3/21/2023. The breach was discovered on 11/28/2023. 284,443 individuals were affected. Notice was sent on 12/20/2023.
- California State AGas victim2024-01-05
Academy Mortgage Corporation detected a network security incident on March 21, 2023, where an unauthorized third party accessed and disabled systems. The investigation concluded in November 2023, determining that personal information (names, SSNs, dates of birth) of current/former employees and mortgage applicants may have been accessed. No evidence of misuse was found. The company engaged forensic specialists, notified law enforcement, rebuilt systems, and offered credit monitoring.
- Montana State AGas victim2023-12-27
Academy Mortgage Corporation notified Montana residents of a March 21, 2023 network security incident where an unauthorized third party accessed systems. Personal information including names, SSNs, and DOBs may have been exposed. The company engaged forensic specialists, notified law enforcement, rebuilt systems, and offered 12 months of credit monitoring.
- Washington State AGas victim2023-12-27
Academy Mortgage Corporation notified the Washington AG of a cybersecurity incident on March 21, 2023, where an unauthorized third party accessed systems. Affected data included names, SSNs, and DOBs for 17,083 Washington residents. Notifications were mailed December 20, 2023, offering credit monitoring.
- Indiana State AGas victim2023-12-20
Academy Mortgage Corporation reported a data breach to the Indiana Attorney General. The breach occurred on 2023-03-21 and was reported on 2023-12-20. 4,984 Indiana residents were affected. 284,443 individuals affected in total.
- New Hampshire State AGas victim2023-12-19
Academy Mortgage Corporation notified the NH Attorney General of a cybersecurity incident detected on March 21, 2023, where an unauthorized third party accessed and disabled systems. The incident potentially exposed personal information (including SSNs) of 214 New Hampshire residents, comprising current/former employees and mortgage applicants. The company engaged forensic specialists, notified law enforcement, rebuilt systems, and offered credit monitoring.
- GLOBALLeak Siteas victim2023-05-14
Academy Mortgage is a family-owned mortgage company based in Draper, Utah, which was founded in 1988. Academy is a direct lender, meaning it handles all of its underwriting and funding in house. It offers both new purchase mortgages and refinance loans, originating more than $15.65 billion in loans in 2021. Duane is the principal owner and founder of Academy Mortgage Corporation, a national mortgage banking firm with its headquarters in Draper, Utah. Duane started Academy Mortgage in 1988. Academy has over 350 branch offices across the country; and is licensed to originate loans in 49 states and the District of Columbia.
- New Hampshire State AGas victim2020-05-13
Academy Mortgage Corp. notified the NH Attorney General of a security incident where unauthorized access occurred Feb 3-5, 2020. The company determined on April 4, 2020, that data for 2 NH residents was accessed, including names, SSNs, driver's licenses, and financial account numbers. Academy engaged forensic investigators, notified the FBI, and offered credit monitoring to affected individuals.
- Massachusetts State AGas victim2020-05-12
Academy Mortgage Corp. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-05-12. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2018-08-31
Academy Mortgage Corporation reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-08-31. 17 Massachusetts residents were affected. The report records the breach type as electronic.